ESO Information Security and Accreditation Officer

Job Requisition ID:  20814
Date Posted:  29 July 2026
Closing Date:  19 August 2026 23:59 CET/CEST
Publication:  Internal & External
Type of Appointment 4 years, extendable to indefinite
Directorate:  Resources and Services
Workplace: 

Noordwijk, NL

Grade Band A2 - A4

Location
ESTEC, Noordwijk, Netherlands  

Description

Information Security and Accreditation Officer, ESA Security Office (ESO), Directorate of Resources and Services.
Reporting functionally to the RNC-X Security Manager and hierarchically to the ESA Security Office, you will be responsible for the security activities related to the Directorate of Resilience, Navigation and Connectivity (RNC) Information Security Office, to ensure rigorous supervision of the correct management of information in terms of security, in accordance with the requirements of the ESA Security Directives. You will, in addition, be responsible for the coordination of the ESO security assurance Team in the RNC Directorate.  

The main ESO Interface will be the ESO Security Accreditation Manager in Brussels. 

Duties

As Accreditation Manager, your tasks and responsibilities, will include:

  • ensuring proper coordination of the ESO RNC Security Assurance Team under the functional authority of the RNC-X Security Manager and in full coordination with ESO;
  • coordinating with the RNC ESO Security Assurance Team the Directorate’s independent security risk analysis, which will include analysis and risk coming from RNC space programmes and RNC security-critical activities; 
  • supporting the establishment of RNC security assurance status and ensuring the Directorate’s proper PL1/PL2 security implementation;
  • supporting the achievement of programme security accreditation objectives and milestones.

As ISO (Information Security Office), your tasks and responsibilities, as defined in the ESA Security Directives, will include:

  • ensuring the security of the Directorate’s information;
  • implementing information security on the basis of security risk assessment; 
  • defining and documenting the Directorate’s local policy on implementation of the assignment of the appropriate levels of protective marking to information in the form of the Security Marking Instruction;
  • coordinating the development of a security marking equivalence matrix for the unclassified information managed within ESA space programmes and projects;
  • identifying the security risk appetite for approval by the security risk owner and recommending the security risk response for approval by the security risk owner; 
  • specifying and documenting the LSE security operating procedures (SECOPs) for approval by the ESA SAA;
  • implementing the LSE SECOPs; 
  • creating and providing the initial security briefing for newly appointed ESA staff and onsite contractor employees working within their Directorate;
  • establishing, executing and maintaining a security awareness programme; 
  • providing reports and recommendations for security improvements and lessons learned to the security risk owner and the ESA Information Protection Policy Officer;
  • reporting any security breaches, vulnerabilities or anomalies in accordance with the Security Directives and policy on the management of security incidents;
  • taking any necessary security actions to contain security breaches in the event of a security incident concerning the LSE for which you are responsible;
  • assisting the ESA Security Office on the conduct of security incident investigation;
  • coordinating with the CIS Project/System Security Officer(s) within the Directorate to ensure the proper implementation of the information protection requirements for the CIS within the Directorate;
  • participating in the Agency-wide network of ISOs, convening twice a year as the ESA Security Board, coordinated by ESO;
  • participating as auditors or inspectors as part of the ESA Security Office audit or inspection of Directorates for which the ISO is not responsible;
  • analysing, in close cooperation with the ITT Initiating Authority, the sensitivity of the information to be provided to bidders in the scope of an ITT. 

Technical competencies

General knowledge of ESA and EU Space Programmes
In-depth knowledge of ESA and EU accreditation processes
In-depth knowledge of high-security assurance programmes
In-depth knowledge of security risk management frameworks

Behavioural competencies

Result Orientation
Operational Efficiency
Fostering Cooperation
Relationship Management
Continuous Improvement
Forward Thinking


For more information, please refer to the ESA Core Behavioural Competencies guidebook
 

Education and professional experience

A master’s in engineering is required for this post together with 4 years of relevant professional experience.  Alternatively, candidates with a bachelor’s degree, complemented by an additional four (4) years of relevant professional experience can be considered.

Additional requirements

  • Substantial security and system engineering experience
  • Strong background in cyber security, policy and standards
  • Excellent organisational and stakeholder management skills
  • Strong judgement, communication skills and willingness to travel

Diversity, Equity and Inclusiveness 
ESA is an equal opportunity employer, committed to achieving diversity within the workforce and creating an inclusive working environment. We therefore welcome applications from all qualified candidates irrespective of gender, sexual orientation, ethnicity, religious beliefs, age, disability or other characteristics. 

At the Agency we value diversity, and we welcome people with disabilities. Whenever possible, we seek to accommodate individuals with disabilities by providing the necessary support at the workplace. The Human Resources Department can also provide assistance during the recruitment process. If you would like to discuss this further, please contact us via email at contact.human.resources@esa.int.

 
Important Information and Disclaimer
In principle, recruitment will be within the advertised grade band (A2-A4). However, if the selected candidate has less than four years of relevant professional experience following the completion of the master’s degree, the position may be filled at A1 level.

Applicants must be eligible to access information, technology, and hardware which is subject to European or US export control and sanctions regulations and eligible to acquire the security clearance by their national security administrations.

During the recruitment process, the Agency may request applicants to undergo selection tests. Additionally, successful candidates will need to undergo basic screening before appointment, which will be conducted by an external background screening service, in compliance with the European Space Agency's security procedures.

Note that ESA is in the process of transitioning to a Matrix setup, which could lead to organisational changes affecting this position.

The information published on ESA’s careers website regarding working conditions is correct at the time of publication. It is not intended to be exhaustive and may not address all questions you would have. 

Nationality and Languages 
Please note that applications are only considered from nationals of one of the following States: Austria, Belgium, Czechia, Denmark, Estonia, Finland, France, Germany, Greece, Hungary, Ireland, Italy, Luxembourg, the Netherlands, Norway, Poland, Portugal, Romania, Slovenia, Spain, Sweden, Switzerland, the United Kingdom and Canada, Cyprus, Latvia, Lithuania and Slovakia. 

According to the ESA Convention, staff shall be recruited on the basis of their qualifications, taking into account an adequate distribution of posts among nationals of the Member States.

The working languages of the Agency are English and French. A good knowledge of one of these is required. Knowledge of another Member State language would be an asset.  


At Impactpool we do our best to provide you the most accurate info, but closing dates may be wrong on our site. Please check on the recruiting organization's page for the exact info. Candidates are responsible for complying with deadlines and are encouraged to submit applications well ahead.
Before applying, please make sure that you have read the requirements for the position and that you qualify. Applications from non-qualifying applicants will most likely be discarded by the recruiting manager.